Cyber Incident Response Lead

hace 1 semana


Heredia, Costa Rica Experian A tiempo completo

Full-time

Employee Status: Regular

Role Type: Home

Department: Legal & Compliance

Schedule: Full Time

Shift: Day Shift

**Company Description**:
Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control and access financial services, businesses to make smarter decisions and thrive, lenders to lend more responsibly, and organizations to prevent identity fraud and crime.

We have 20,000 people operating across 44 countries and every day we’re investing in new technologies, talented people, and innovation to help all our clients maximize every opportunity.

As a member of Experian’s Global Security Office (EGSO) - Global Cyber Incident Response Team, (GCIRT) this individual will respond, contain, escalate, investigate, and coordinate mitigation of security events relative to anomalies detected and escalated by the Cyber Fusion Centre (CFC) according to Experian’s Incident Response Plan. The member will respond and analyze security incidents involving threats targeting Experian information assets. These threats may include phishing, malware, network attacks, suspicious activity, etc. In addition, this position will involve working with end-users, stakeholders, technical support teams, and management to ensure proper remediation and recovery from these threats. Leverages analytical skills using data collected from endpoints, environmental logging, and a variety of other sources to maximize containment and eradication of threats, while expediting recovery of the business. This individual will be responsible for driving the Incident Response teams SLO Goals and performance, working to improve Incident Response process documentation, and coordinating training of team. They will be accountable for the overall Incident Response tower personnel management strategy.

This position reports to the CFC Sr. Manager Cyber Incident Response.

**Key Responsibilities Include**:
The Team Lead executes Operational Processes and Procedures as a matter of daily responsibility. The role is the detailed and repeatable execution of all operational tasks which are documented in the Wiki and Incident Response Plan.
- Respond to Security to cyber security events and alerts associated to threats, intrusions, and-or compromises per SLO.
- Effectively manages multiple cases related to security incidents throughout the incident response lifecycle; including Analysis, Containment, Eradication, Recovery, and Lessons Learned.
- Identifies best methods to contain, eradicate, and recover from a wide variety of security incidents. Provides recommendations to proactively prevent incidents from re-occurring in the future.
- Coordinates successful conclusion of security incidents according to Process & Procedures. Escalates severe incidents according to Experian’s Incident Response Plan.
- Maintains all case documentation, including notes, analysis findings, containment steps, and root cause for each assigned security incident.
- Maintains a foundational understanding of common Operating Systems (Windows, Linux, Mac OS), Networking (Firewalls, Proxies, etc.), and Security Technologies (Anti-Virus, Intrusion Prevention, etc.)
- Follow all documented GCIRT playbooks, standards, processes, and procedures (GCIRT xWiki). All cases owned by an Analyst shall be well documented in accordance with GCIRT standards.
- Frequently attend and participate in the CFC Weekly Lessons Learned Meetings. Contribute at least two (2) items to the CFC Weekly Meeting Lessons Learned per Month.
- Maintain GCIRT Shift Logs for period worked. Verify Shift Logs are completed and accurate by L1 analysts.
- All assigned security incidents must be reviewed, updated, and documented at least every (3) business days. Coordinate coverage for any cases which need update while out on leave or holiday.
- Incident updates or contact with end user to be done every 24 hours and documented case notes.
- Maintain assigned case load and efficiently move incidents through each phase of the IR Lifecyle with a goal to complete cases within 5 business days.
- Follow case hand-off procedure, assisting other GCIRT Team Members with their caseload while they are off shift.
- Provide Advanced Support as needed to other GCIRT Analysts (Logs review, IP Block question). Mentor other GCIRT analyst when required (process question, tool usage)
- Leads local resources to ensure team meets SLOs and follows Incident Response Process, Procedures & Playbooks.
- Supports overall direction for the GCIRT and input to the overall security strategy.
- Work with GCIRT team to resolve any case discrepancies or breach of SLOs, including:

- Unresolved GCIRT Cases exceeding SLOs and make sure to assist other analysts with their case



  • Heredia, Costa Rica IBM A tiempo completo

    **Introduction** **Your Role and Responsibilities** - Act as a delegate to the IBM Cloud CISO by overseeing cyber incidents in collaboration with IBM CSIRT, Legal, and other various security teams within IBM. - Provide final approvals for the Root Cause Analysis performed post-incident and ensure preventative actions are in place with the responsible...


  • Heredia, Costa Rica Grupo Preseleccion A tiempo completo

    We’d love to hear from people with Ability to work in a dynamic, on call environment. Advanced English Level. 5+ years of professional experience in cybersecurity and/or information security or demonstrated equivalent capability. Hands-on experience working in cyber incident analysis and/or response in medium to large organizations with cloud and...


  • Heredia, Costa Rica Sysco Costa Rica A tiempo completo

    **Requirements**: - Ensure incident identification, assessment, quantification, reporting, communication, mitigation, and monitoring. - Work collaboratively with other cybersecurity teams and business units. - Drive the implementation of emerging threat intelligence (IOCs, updated rules, etc.) to identify affected systems and the scope of the attack. -...


  • Heredia, Costa Rica Experian A tiempo completo

    Full-time Employee Status: Regular Role Type: Hybrid Department: Legal & Compliance Schedule: Full Time Shift: Day Shift **Company Description**: Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new...

  • Cyber Security Engineer

    hace 2 semanas


    Heredia, Costa Rica In All Media A tiempo completo

    **We are hiring! (COSTA RICA ONLY)** **ONLY NIGHT SHIFTS AVAILABLES** **Responsabilities**: - Respond to security incidents by identifying, containing, analyzing, and mitigating the incident's impact. - Develop and maintain incident response procedures and playbooks, ensuring they are up-to-date and effective. - Conduct post-incident reviews and provide...


  • Heredia, Costa Rica Experian A tiempo completo

    Company Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...


  • Heredia, Costa Rica Experian A tiempo completo

    Company Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...


  • Heredia, Costa Rica Experian A tiempo completo

    Company Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...


  • Heredia, Costa Rica Experian A tiempo completo

    Company Description Experian is the world’s leading global information services company. During life’s big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence. We help individuals to take financial control...


  • Heredia, Costa Rica FusionHit A tiempo completo

    **Job Duties**: - Implement and maintain GRC frameworks like PCI DSS, SOC 2, and SOC 1, ensuring compliance with current standards. - Manage cybersecurity policies, conduct risk and vulnerability assessments to safeguard information assets. - Lead and coordinate internal and external audit processes, including collaboration with stakeholders. - Develop and...


  • Heredia, Costa Rica Experian A tiempo completo

    **Company Description** About us, but we’ll be brief** Experian is the world’s leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses, and society. We are thrilled to share that **FORTUNE has named Experian one of the 100 Best Companies to work for**. In addition, for the last five...


  • Heredia, Costa Rica Experian A tiempo completo

    Full-time Employee Status: Regular Role Type: Home Department: Customer Service Schedule: Full Time **Company Description**: **About us, but we’ll be brief** Experian is the world’s leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses, and society. We are thrilled to share...


  • Heredia, Costa Rica Stryker A tiempo completo

    **Why join Stryker?**: Our total rewards package offering includes bonuses, healthcare, insurance benefits, retirement programs, wellness programs, as well as service and performance awards - not to mention various social and recreational activities, all of which are location specific. **Know someone at Stryker?**: **Who we Want**: - ** Dedicated...

  • Cybersecurity Tier 2

    hace 3 semanas


    Heredia, Costa Rica Sysco Costa Rica A tiempo completo

    Cyber Security Analyst is responsible for the real-time identification and alerting of information security events that pose an immediate risk to Sysco’s employees, customers, suppliers, shareholders, partners, or business operations. **Requirements**: - Cybersecurity SOC Tier 2 analyst must be able to do the following: - Correlate threat data from...

  • Intern

    hace 3 semanas


    Heredia, Costa Rica Moody's A tiempo completo

    Functional Responsibilities: - Investigate security incidents and events, using SIEM and other tools; collect evidence and work with different teams to isolate and/or remediate as necessary. - Analyze, correlate and action on data from subscription and public cyber intelligence services, develop tactics to combat future threats. - Communicate and escalate...

  • Cybersecurity Analyst

    hace 4 semanas


    Heredia, Costa Rica Moody's A tiempo completo

    Moody’s Cyber Security team is responsible for helping the organization balance risk by aligning policies and procedures with Moody’s business requirements. The team is responsible for the development, enforcement and monitoring of security controls, policies and procedures, and for the delivery of security services. Cyber Security team sets strategic...

  • Lead Incident Manager

    hace 5 días


    Heredia, Costa Rica Experian A tiempo completo

    Full-time Employee Status: Regular Role Type: Hybrid Department: Information Technology & Systems Schedule: Full Time Shift: Day Shift **Company Description**: **About us, but we’ll be brief** Experian is the world’s leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses, and...

  • HR Generalist-bilingue

    hace 2 semanas


    Heredia, Costa Rica Grupo Preselección A tiempo completo

    **We’d love to hear from people with** Ability to work in a dynamic, on call environment. Advanced English Level. 5+ years of professional experience in cybersecurity and/or information security or demonstrated equivalent capability. Hands-on experience working in cyber incident analysis and/or response in medium to large organizations with cloud and...


  • Heredia, Costa Rica Citi A tiempo completo

    The Security Incident Management Sr. Analyst is an intermediate level position responsible for driving efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security...

  • Support Readiness Lead

    hace 3 semanas


    Heredia, Costa Rica Experian A tiempo completo

    Company Description **About us, but we’ll be brief** Experian is the world’s leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society. We are thrilled to share that **FORTUNE has named Experian one of the 100 Best Companies to work for**. In addition, for the last five...